SP
BravenNow
Customers of three UK banks report being able to see other people’s accounts on app
| United Kingdom | politics | ✓ Verified - theguardian.com

Customers of three UK banks report being able to see other people’s accounts on app

#UK banks #security breach #banking app #data privacy #customer accounts #cybersecurity #digital banking

📌 Key Takeaways

  • Customers of three UK banks experienced a security breach allowing them to view other users' accounts via banking apps.
  • The incident raised serious concerns about data privacy and financial security for affected individuals.
  • The banks involved have not been officially named, but the issue was widely reported by customers on social media.
  • This glitch highlights vulnerabilities in digital banking systems and the need for robust cybersecurity measures.

📖 Full Retelling

<p>Lloyd’s, Halifax and Bank of Scotland customers say information including national insurance numbers and recent purchases was on view </p><p>Some customers of Lloyds, Halifax and Bank of Scotland were able to see the bank accounts of other customers when they logged into their app on Thursday morning.</p><p>Customers reported difficulties logging into their bank accounts and in some cases were able to view account details and transactions that did not belong to t

🏷️ Themes

Cybersecurity, Banking

📚 Related People & Topics

Banking in the United Kingdom

Banking in the United Kingdom encompasses a system of banks and bank-like financial institutions that provide financial services to consumers and businesses, overseen by regulators and ultimately, the central bank, the Bank of England. The sector consists of incumbent major banks and innovative chal...

View Profile → Wikipedia ↗

Entity Intersection Graph

Connections for Banking in the United Kingdom:

🌐 Lloyd 1 shared
View full profile

Mentioned Entities

Banking in the United Kingdom

Banking in the United Kingdom encompasses a system of banks and bank-like financial institutions tha

Deep Analysis

Why It Matters

This banking app security breach is critically important because it exposes customers' sensitive financial data to unauthorized individuals, potentially enabling fraud, identity theft, and financial losses. It affects thousands of banking customers who rely on digital services for daily transactions and financial management. The incident undermines public trust in digital banking systems and raises serious questions about data security protocols at major financial institutions. Regulatory bodies will likely investigate, potentially resulting in significant fines and mandatory security overhauls across the banking sector.

Context & Background

  • UK banks have increasingly shifted to digital platforms, with mobile banking apps becoming primary access points for millions of customers
  • Previous banking security incidents in the UK include the 2018 TSB IT meltdown that affected 1.9 million customers and resulted in £330 million in compensation
  • The Financial Conduct Authority (FCA) and Prudential Regulation Authority (PRA) have strict requirements for financial data protection under UK and EU regulations
  • Open Banking regulations introduced in 2018 were designed to increase competition but also created new data security challenges
  • Major UK banks have invested billions in digital transformation over the past decade, with varying degrees of success in maintaining system stability

What Happens Next

The affected banks will immediately disable vulnerable app functions while conducting emergency security audits. Customers will receive notifications about the breach and guidance on protecting their accounts. The Financial Conduct Authority will launch a formal investigation within days, potentially resulting in enforcement actions. Class action lawsuits may emerge from affected customers seeking compensation for privacy violations. All UK banks will likely conduct security reviews of their digital platforms, with regulatory pressure for industry-wide security improvements expected within 3-6 months.

Frequently Asked Questions

What should affected customers do immediately?

Affected customers should immediately log out of their banking apps, change their passwords, and monitor their accounts for unauthorized transactions. They should contact their bank directly for specific instructions and consider placing fraud alerts on their accounts. Customers should also review their transaction history carefully and report any suspicious activity immediately.

Which banks are affected by this security breach?

While the article mentions three UK banks, specific names aren't provided in this summary. Typically in such incidents, banks issue official statements once they've confirmed the scope of the problem. Customers should check official bank communications and financial news sources for confirmed information about which institutions are affected.

How could this happen with modern banking security?

Such breaches often result from software glitches during system updates, database configuration errors, or authentication system failures. Despite advanced security measures, human error in coding or system maintenance can create vulnerabilities. The complexity of integrating multiple banking systems while maintaining real-time access creates potential points of failure that sophisticated testing may not always catch.

Will customers be compensated for this breach?

UK banks are generally required to compensate customers for direct financial losses resulting from security breaches. Additional compensation for distress or inconvenience may depend on the severity of the breach and regulatory findings. The Financial Ombudsman Service can intervene if customers and banks cannot agree on appropriate compensation amounts.

How will this affect digital banking adoption?

This incident may temporarily slow digital banking adoption as customers question app security, particularly among older or more cautious users. However, similar past incidents have typically resulted in short-term caution followed by continued digital adoption as banks implement improved security measures. The long-term trend toward digital banking remains strong due to convenience benefits.

What regulatory consequences might the banks face?

Banks could face substantial fines from the Financial Conduct Authority for data protection failures, potentially reaching millions of pounds. They may be required to implement costly security upgrades and undergo increased regulatory scrutiny. Senior executives could face personal accountability, and the banks' operational risk ratings may be downgraded, affecting their capital requirements.

}
Original Source
Customers of three UK banks report being able to see other people’s accounts on app Lloyd’s, Halifax and Bank of Scotland customers say information including national insurance numbers and recent purchases was on view Some customers of Lloyds, Halifax and Bank of Scotland were able to see the bank accounts of other customers when they logged into their app on Thursday morning. Customers reported difficulties logging into their bank accounts and in some cases were able to view account details and transactions that did not belong to them. One woman told the BBC she was able to see the accounts of six different users on the Bank of Scotland app, including some national insurance numbers, over a 20-minute period. She could see benefits payments from the Department of Work and Pensions, which use the national insurance numbers of recipients as a payment reference. She also saw references to Waitrose transactions, despite not living near a store. While a Lloyds Banking Group spokesperson apologised and said the incident had been quickly resolved, customers were still reporting difficulties logging into their bank accounts. In a Facebook post, consumer champion Martin Lewis said people had been messaging about “being shown other people’s transactions”. In response, the founder of MoneySavingExpert was inundated with close to 2,000 comments from worried bank customers. They reported being able to see other people’s names and transactions, and some said they feared they had been hacked. In a post, Shirley Finlayson said that, when she logged into the Bank of Scotland app, she “saw quite a few transactions one going back to 2024, the payments going out showed all the details of the person receiving it, name, bank account/sort code”. Another user, Jill Steel, said that when she logged into her Lloyds app she had been able to see the financial details of 30 people. “Can see names plus corresponding account numbers and sort codes. NI numbers if they’re receiving any benefits.” R...
Read full article at source

Source

theguardian.com

More from United Kingdom

News from Other Countries

🇺🇸 USA

🇺🇦 Ukraine